<img src="https://secure.ruth8badb.com/159098.png" alt="" style="display:none;">

IT Security Newsletter - 8/28/2023

SHARE

Top News

Ohio History Organization Says Personal Information Stolen in Ransomware Attack

Ohio History Connection (OHC) has confirmed that personal information of thousands of individuals was stolen in a July ransomware attack and later posted online. A nonprofit organization, OHC manages the Ohio History Center, the primary museum for Ohio's history, as well as 50 museums and sites across the state. The organization is headquartered in Columbus, where the Ohio History Center is located. READ MORE...

Breaches

Prospect Medical stolen data listed for sale by emerging ransomware group

The Rhysida ransomware group claimed responsibility for a ransomware attack against Prospect Medical Holdings that forced multiple hospital closures earlier this month and continues to impact operations. The threat actor said it stole more than 500,000 Social Security numbers, passport data of clients and employees, patient medical files, and financial and legal documents, according to a Thursday post on the dark web. READ MORE...


Leaseweb is restoring 'critical' systems after security breach

Leaseweb, one of the world's largest cloud and hosting providers, notified people that it's working on restoring "critical" systems disabled following a recent security breach. In emails sent to customers on Thursday, the Dutch cloud provider says it discovered signs of "unusual" activity in some parts of its infrastructure on Tuesday night while investigating Customer Portal downtime issues. READ MORE...


Data breach at French govt agency exposes info of 10 million people

Pôle emploi, France's governmental unemployment registration and financial aid agency, is informing of a data breach that exposed data belonging to 10 million individuals. "Pôle emploi became aware of the violation of the information system of one of its providers involving a risk of disclosure of personal data of job seekers," reads the press release. Although the agency does not specify the number of impacted individuals, Le Parisien reports an estimate of 10 million people to be impacted. READ MORE...

Hacking

Two Men Arrested Following Poland Railway Hacking

Polish police on Sunday arrested two men suspected of illegally hacking into the national railway's communications network, which destabilized traffic in some areas of the country this weekend. "The two men arrested are Polish citizens," said Tomasz Krupa, a police spokesman in the eastern city of Bialystok where the arrest occurred. Police also seized radio equipment from the apartment where the men, who are 24 and 29 years of age, were detained. READ MORE...

Malware

'Whiffy Recon' Malware Transmits Device Location Every 60 Seconds

Researchers have uncovered the "Whiffy Recon" malware being deployed by the SmokeLoader botnet, which is a customized Wi-Fi scanning executable for Windows systems that tracks the physical locations of victims. Whiffy Recon takes its name from the pronunciation of Wi-Fi used in many European countries and Russia ("wiffy" instead of the American "why fie"). It seeks out Wi-Fi cards or dongles on compromised systems, and then scans for nearby Wi-Fi access points (APs) every 60 seconds. READ MORE...


Luna Grabber Malware Targets Roblox Gaming Devs

Since the start of this month, researchers at ReversingLabs have found a host of malicious, multistage packages on the npm public repository that implant an open source, information-stealing malware known as Luna Grabber. To infect its victims, the packages imitate a legitimate package, such as noblox.js - "a Node.js Roblox API wrapper used to write scripts that interact with the Roblox gaming platform," according to a ReversingLabs analysis on the campaign. READ MORE...

Exploits/Vulnerabilities

Smart lightbulb and app vulnerability puts your Wi-Fi password at risk

New research highlights another potential danger from IoT devices, with a popular make of smart light bulbs placing your Wi-Fi network password at risk. Researchers from the University of London and Universita di Catania produced a paper explaining the dangers of common IoT products. In this case, how smart bulbs can be compromised to gain access to your home or office network. READ MORE...

On This Date

  • ...in 1867, The United States takes possession of the uninhabited Midway Island.
  • ...in 1907, UPS is founded by Seattle teenagers James E. Casey and Claude Ryan as a bicycle messenger service.
  • ...in 1917, comics artist and writer Jack Kirby, the co-creator of Captain America, the X-Men, and hundreds of other characters, is born in New York City.
  • ...in 1963, Dr. Martin Luther King, Jr. gives his famous "I Have A Dream" speech at the Lincoln Memorial.